The security and compliance platform Qualys today announced new capabilities as part of CyberSecurity Asset Management 3.0 (CSAM) that provide customers with a real-time view of their attack surface. Qualys CSAM 3.0 consolidates asset and risk data into a single interface. For every asset, it provides data such as upcoming end-of-life and end-of-support data, missing … continue reading
The network automation platform BackBox is announcing a new feature in its Network Vulnerability Manager (NVM) that it hopes will make it easier for companies to manage and prioritize vulnerabilities. They will now be able to mark specific CVEs that they believe to be irrelevant or that were already mitigated as “mitigated” in the app. … continue reading
The need for more mature security practices when using cloud-native technology is clear with 87% of container images having high or critical vulnerabilities, up from 75% last year. Most of them at 71% of those vulnerabilities have a fix available that has not been applied. This data comes from the new 2023 Cloud-Native Security & … continue reading
The cloud-based security and compliance company Qualys stated that it identified 7.54 million vulnerabilities related related to FireEye Red Team assessment tools and compromised versions of SolarWinds Orion. Most of these vulnerabilities, 5.29 million, were related to the FireEye Red Team tools. Additionally, the vast majority of the vulnerabilities at 99.84% were from eight vulnerabilities in Microsoft … continue reading
Crowdsourced security has seen a boom this year as Bugcrowd saw a 50% increase in submissions on its platform in the last 12 months, according to its latest Priority One report. Bugcrowd provides a platform for ethical hackers around the world to help organizations maximize their security. The study revealed a 65% increase from the … continue reading